d74a870d50
031722 cylance protect faulty log workaround |
||
---|---|---|
.. | ||
AADUserInfo | ||
ASim Microsoft Defender for IoT - Endpoint | ||
ASim Sysmon for Linux | ||
ASim Sysmon for Windows | ||
ASim WindowsEvent | ||
ASimAuthentication | ||
ASimDns | ||
ASimFileEvent | ||
ASimNetworkSession | ||
ASimProcessEvent | ||
ASimRegistryEvent | ||
ASimWebSession | ||
Alsid | ||
ArubaClearPass | ||
AzureFirewall | ||
Barracuda | ||
CassandraDB | ||
CiscoISE | ||
CiscoMeraki | ||
CiscoUCS | ||
CiscoUmbrella | ||
ConfluenceAudit | ||
CyberArk | ||
CylancePROTECT | ||
DSTIM | ||
Duo Security | ||
Exabeam | ||
GWorkspaceReports | ||
GitHub | ||
InfobloxNIOS | ||
JiraAudit | ||
JuniperSRX | ||
Logstash | ||
MCAS | ||
Morphisec | ||
Netskope | ||
OSSEC | ||
Onapsis | ||
OneLogin | ||
ProofpointPOD | ||
PulseConnectSecure | ||
QualysKB | ||
SQLSever | ||
SalesforceServiceCloud | ||
SentinelOne | ||
SophosXGFirewall | ||
SquidProxy | ||
SymantecDLP | ||
SymantecEndpointProtection | ||
SymantecProxySG | ||
SymantecVIP | ||
SyslogAUOMS | ||
Sysmon | ||
TrendMicro | ||
WorkplaceFacebook | ||
ZScaler | ||
ZoomReports | ||
pfsense | ||
AwsS3BucketAPILogsParser.txt | ||
Cisco_ISEParser.txt | ||
CommonSecurityLogs-AdditionalExtensionParser.txt | ||
Epic_Parser.csl | ||
ForgeRockParser.txt | ||
KVPairExtraction | ||
Netscaler_parser.csl | ||
OneIdentity_Safeguard.txt | ||
PAN_Parser.csl | ||
Readme | ||
RemoteDesktopServices-RdpCoreTS-parser.txt | ||
Teams_parser.txt | ||
WatchGuardFirebox.txt | ||
Zoom_parser.txt | ||
bind9_syslog.txt | ||
squid_parser.txt |
Readme
For details on creating a Parsers, see the Contribution guidance - https://github.com/Azure/Azure-Sentinel/wiki/Contribute-to-Sentinel-GitHub-Community-of-Queries#example-parser